Skip to content
VulniPulse
Highest advisory severityCritical Exploited CISA KEV 1 vendor · 1 advisory

CVE-2026-0300

CVE-2026-0300: 1 tracked advisory record across Palo Alto. CISA KEV listed; exploitation observed. Compare vendor sources and published fix guidance.

Compare the source-linked records below. Ratings and product/version details belong to each advisory; they are not a single CVE-wide score or proof that every listed product is affected. How VulniPulse collects and checks evidence.

Vendor advisory comparison

Palo Alto

1 advisory
  • Advisory severityCritical9.3

    Critical [CVE-2026-0300] PAN-OS: Unauthenticated user initiated Buffer Overflow Vulnerability in User-ID™ Authentication Portal

    CVE-2026-0300Source published

    CVE-2026-0300 PAN-OS: Unauthenticated user initiated Buffer Overflow Vulnerability in User-ID™ Authentication Portal

    Affected products in this advisory
    • PAN-OS
    Source-reported affected versions
    • PAN-OS < 12.1.7
    • PAN-OS < 11.2.12
    • PAN-OS < 11.1.15
    • PAN-OS < 10.2.18-h6
    Source-reported fixed versions
    • PAN-OS >= 12.1.7
    • PAN-OS >= 12.1.4-h5
    • PAN-OS >= 11.2.12
    • PAN-OS >= 11.2.10-h6

    13 more entries in the full advisory.

    Mitigation guidance
    • Upgrade to a fixed release: PAN-OS >= 12.1.7; PAN-OS >= 12.1.4-h5; PAN-OS >= 11.2.12; PAN-OS >= 11.2.10-h6; ….
    Workarounds
    • Customers can mitigate the risk of this issue by taking either of the following actions:
    • Restrict User-ID™ Authentication Portal access to only trusted zones and in addition, disable Response Pages in the Interface Management Profile attached to every L3 interface in any zone where untrusted/internet traffic can ingress.
    • Keep Response Pages enabled only on interfaces in trust/internal zones where legitimate users' browsers ingress.
    • Refer to Step 6 of the following Live Community article and Knowledgebase article for steps to restrict access.Disable User-ID™ Authentication Portal if not required.

Android app · Google Play

Monitor future Palo Alto CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 34 official vendor sources and 160+ reviewed platform categories.

Matching phone alertsOptional email delivery